CVE-2007-2120
published 2007-04-18CVE-2007-2120: The Oracle Discoverer servlet in Oracle Application Server 9.0.4.3, 10.1.2.0.2, and 10.1.2.2.0 allows remote attackers to shut down an Oracle TNS Listener via…
PriorityP337high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
2.98%
85.9th percentile
The Oracle Discoverer servlet in Oracle Application Server 9.0.4.3, 10.1.2.0.2, and 10.1.2.2.0 allows remote attackers to shut down an Oracle TNS Listener via a TNS STOP command in a request that uses the database/TNS alias, aka AS01.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | application_server | — | — |
| oracle | application_server | — | — |
| oracle | application_server | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.oracle.com/technetwork/topics/security/cpuapr2007-090632.htmlhttp://www.red-database-security.com/advisory/oracle_cpu_apr_2007.htmlhttp://www.red-database-security.com/advisory/oracle_discoverer_servlet.htmlhttp://www.securityfocus.com/archive/1/466160/100/0/threadedhttp://www.securityfocus.com/archive/1/466329/100/200/threadedhttp://www.securityfocus.com/bid/23532http://www.securitytracker.com/id?1017927http://www.us-cert.gov/cas/techalerts/TA07-108A.htmlhttp://www.vupen.com/english/advisories/2007/1426http://www.oracle.com/technetwork/topics/security/cpuapr2007-090632.htmlhttp://www.red-database-security.com/advisory/oracle_cpu_apr_2007.htmlhttp://www.red-database-security.com/advisory/oracle_discoverer_servlet.htmlhttp://www.securityfocus.com/archive/1/466160/100/0/threadedhttp://www.securityfocus.com/archive/1/466329/100/200/threadedhttp://www.securityfocus.com/bid/23532http://www.securitytracker.com/id?1017927http://www.us-cert.gov/cas/techalerts/TA07-108A.htmlhttp://www.vupen.com/english/advisories/2007/1426
2007-04-18
Published